vendor:
AbsoluteTelnet
by:
deadbeat
7.5
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: AbsoluteTelnet
Affected Version From: AbsoluteTelnet 2.00
Affected Version To: AbsoluteTelnet 2.00
Patch Exists: NO
Related CWE:
CPE: a:absolutetelnet:absolutetelnet:2.00
Platforms Tested:
AbsoluteTelnet Buffer Overflow Vulnerability
A buffer overflow vulnerability exists in AbsoluteTelnet due to insufficient bounds checking when setting the title bar of the client. An attacker can exploit this vulnerability by enticing a victim user to view a website with malicious HTML tags, leading to a buffer overflow condition and potential code execution.
Mitigation:
It is recommended to update AbsoluteTelnet to the latest version to mitigate this vulnerability.